index
:
wireguard-linux
backport-5.4.y
davem/net
davem/net-next
devel
gregkh/stable-5.4.y
jd/bump-compilers
jd/deferred-aip-removal
jd/new-archs
jd/orphan-parallel
jd/rcu-barrier
jd/shorter-socket-lock
jd/unified-crypt-queue
jd/xdp-l3
stable
update-toolchain
WireGuard for the Linux kernel
Jason A. Donenfeld
about
summary
refs
log
tree
commit
diff
stats
homepage
log msg
author
committer
range
path:
root
/
security
Age
Commit message (
Expand
)
Author
Files
Lines
2025-07-15
Revert "apparmor: use SHA-256 library API instead of crypto_shash API"
John Johansen
2
-13
/
+75
2025-07-15
apparmor: mitigate parser generating large xtables
John Johansen
3
-6
/
+45
2025-07-14
apparmor: use SHA-256 library API instead of crypto_shash API
Eric Biggers
2
-75
/
+13
2025-07-09
integrity/platform_certs: Allow loading of keys in the static key management mode
Srish Srinivasan
1
-2
/
+3
2025-07-04
tree-wide: s/struct fileattr/struct file_kattr/g
Christian Brauner
2
-4
/
+4
2025-07-01
selinux: implement inode_file_[g|s]etattr hooks
Andrey Albershteyn
1
-0
/
+14
2025-07-01
lsm: introduce new hooks for setting/getting inode fsxattr
Andrey Albershteyn
1
-0
/
+30
2025-06-30
smack: fix kernel-doc warnings for smk_import_valid_label()
Konstantin Andreev
1
-2
/
+4
2025-06-27
landlock: Fix warning from KUnit tests
Tingmao Wang
1
-27
/
+42
2025-06-24
selinux: don't bother with selinuxfs_info_free() on failures
Al Viro
1
-2
/
+0
2025-06-24
smack: fix bug: setting task label silently ignores input garbage
Konstantin Andreev
3
-63
/
+148
2025-06-24
smack: fix bug: unprivileged task can create labels
Konstantin Andreev
1
-14
/
+27
2025-06-23
exec: Correct the permission check for unsafe exec
Eric W. Biederman
1
-12
/
+8
2025-06-22
smack: fix bug: invalid label of unix socket file
Konstantin Andreev
1
-14
/
+44
2025-06-22
smack: always "instantiate" inode in smack_inode_init_security()
Konstantin Andreev
1
-3
/
+7
2025-06-22
smack: deduplicate xattr setting in smack_inode_init_security()
Konstantin Andreev
1
-26
/
+28
2025-06-22
smack: fix bug: SMACK64TRANSMUTE set on non-directory
Konstantin Andreev
1
-11
/
+13
2025-06-22
smack: deduplicate "does access rule request transmutation"
Konstantin Andreev
1
-25
/
+32
2025-06-19
selinux: add __GFP_NOWARN to hashtab_init() allocations
Paul Moore
1
-1
/
+2
2025-06-19
selinux: optimize selinux_inode_getattr/permission() based on neveraudit|permissive
Stephen Smalley
2
-1
/
+21
2025-06-19
selinux: introduce neveraudit types
Stephen Smalley
5
-1
/
+48
2025-06-19
selinux: change security_compute_sid to return the ssid or tsid on match
Stephen Smalley
1
-5
/
+11
2025-06-17
ipe: don't bother with removal of files in directory we'll be removing
Al Viro
2
-22
/
+14
2025-06-17
evm_secfs: clear securityfs interactions
Al Viro
1
-8
/
+7
2025-06-17
ima_fs: get rid of lookup-by-dentry stuff
Al Viro
1
-66
/
+16
2025-06-17
ima_fs: don't bother with removal of files in directory we'll be removing
Al Viro
1
-39
/
+18
2025-06-17
apparmor: file never has NULL f_path.mnt
Al Viro
1
-1
/
+1
2025-06-17
landlock: opened file never has a negative dentry
Al Viro
1
-1
/
+0
2025-06-16
selinux: fix selinux_xfrm_alloc_user() to set correct ctx_len
Stephen Smalley
1
-1
/
+1
2025-06-16
selinux: add a 5 second sleep to /sys/fs/selinux/user
Paul Moore
1
-0
/
+1
2025-06-16
lsm: trivial comment fix
Kalevi Kolttonen
1
-1
/
+1
2025-06-16
ima: add a knob ima= to allow disabling IMA in kdump kernel
Baoquan He
1
-0
/
+26
2025-06-11
make securityfs_remove() remove the entire subtree
Al Viro
1
-37
/
+10
2025-06-11
securityfs: pin filesystem only for objects directly in root
Al Viro
1
-8
/
+13
2025-06-11
securityfs: don't pin dentries twice, once is enough...
Al Viro
1
-2
/
+0
2025-06-11
KEYS: Invert FINAL_PUT bit
Herbert Xu
2
-4
/
+5
2025-05-31
Merge tag 'gcc-minimum-version-6.16' of git://git.kernel.org/pub/scm/linux/kernel/git/arnd/asm-generic
Linus Torvalds
1
-76
/
+0
2025-05-29
Merge tag 'ipe-pr-20250527' of git://git.kernel.org/pub/scm/linux/kernel/git/wufan/ipe
Linus Torvalds
4
-26
/
+63
2025-05-28
Merge tag 'net-next-6.16' of git://git.kernel.org/pub/scm/linux/kernel/git/netdev/net-next
Linus Torvalds
5
-70
/
+2
2025-05-28
Merge tag 'selinux-pr-20250527' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/selinux
Linus Torvalds
11
-85
/
+232
2025-05-28
Merge tag 'lsm-pr-20250527' of git://git.kernel.org/pub/scm/linux/kernel/git/pcmoore/lsm
Linus Torvalds
1
-18
/
+18
2025-05-28
Merge tag 'integrity-v6.16' of git://git.kernel.org/pub/scm/linux/kernel/git/zohar/linux-integrity
Linus Torvalds
4
-33
/
+185
2025-05-28
Merge tag 'Smack-for-6.16' of https://github.com/cschaufler/smack-next
Linus Torvalds
1
-7
/
+5
2025-05-28
Merge tag 'hardening-v6.16-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/kees/linux
Linus Torvalds
1
-1
/
+1
2025-05-27
ipe: add errno field to IPE policy load auditing
Jasjiv Singh
4
-26
/
+63
2025-05-26
Merge tag 'vfs-6.16-rc1.async.dir' of git://git.kernel.org/pub/scm/linux/kernel/git/vfs/vfs
Linus Torvalds
3
-5
/
+5
2025-05-25
apparmor: Document that label must be last member in struct aa_profile
John Johansen
1
-1
/
+8
2025-05-25
apparmor: make debug_values_table static
John Johansen
1
-1
/
+1
2025-05-25
apparmor: force auditing of conflicting attachment execs from confined
Ryan Lee
1
-0
/
+9
2025-05-25
apparmor: include conflicting attachment info for confined ix/ux fallback
Ryan Lee
1
-2
/
+33
[prev]
[next]